IaaS providers may not allow network-based vulnerability scanning because they have no way of distinguishing friendly network scans from attack activity.
IaaS提供商可能不允许基于网络的漏洞扫描,因为他们无法区分善意的网络扫描和攻击活动。
For example, as in a CSRF vulnerability in Google Mail. In this proof-of-concept attack, the victim would have been lured to a web site controlled by the attacker.
例如,Google Mail的一个CSRF漏洞,在这个概念验证的攻击中,受害者会被引诱到一个被攻击者控制的站点。
But problems resurfaced this month with Google writing in its official blog about hackers exploiting a vulnerability in Internet Explorer to attack some Gmail users.
但是这个月问题有重新出现,google在自己的官方博客里说黑客利用网络浏览器的弱点来伤害gmail用户。
应用推荐